
halite
High-level cryptography interface powered by libsodium

High-level cryptography interface powered by libsodium

Progress Telerik Report Server pre-authenticated RCE chain (CVE-2024-4358/CVE-2024-1800)

POC for CVE-2024-3183 (FreeIPA Rosting)

Reproducer for CVE-2026-40022: Apache Camel camel-platform-http-main authentication bypass on non-root context paths

elabFTW < 4.1.0 - account lockout bypass and login brute force

Detects an authentication bypass vulnerability in Palo Alto PAN-OS (CVE-2025-0108).

Vulnerability in GNU InetUtils telnetd Enables Remote Root Access

RFC6265-compliant cookie parsing and CookieJar management library for Node.js, with CVE-2023-26136 security patch. Supports cookie creation,…

Unveiled at DEF CON 20, NTLM Relaying to ALL THE THINGS!

Pass the Hash to a named pipe for token Impersonation

Python script to exploit the OWASSRF + TabShell chain on vulnerable Microsoft Exchange servers, leveraging Kerberos authentication for command…

CVE-2023-41508 - A hard-coded password in Super Store Finder v3.6 allows attackers to access the administration panel.

PowerShell Pass The Hash Utils

Relays NegoEx/PKU2U Kerberos authentication to arbitrary targets, enabling credentialless authentication, command execution, SMB hash dumping, and…

This extension, for Burp Suite Enterprise Edition, utilizes session handling rules to provide a TOTP token to outgoing requests.

Powershell Script to build token for CVE-2019-1619

Authorization library enforcing ACL, RBAC, ABAC, and custom access-control models with RESTful matching and policy management APIs for applications…

Pure Rust library for RSA public-key cryptography: key generation, PKCS#1 v1.5 and OAEP encryption/decryption, PSS signatures, plus key import/export.